Feed
Enterprise technology news for the people who buy and run it. Our editors pick stories from company newsrooms and trusted trade press, and every one credits and links its source. You’re seeing Top: recent stories ranked by what readers open, save and discuss. Nobody pays to rank. How ranking works
Narrow it by category below, or follow companies and categories to get their stories in For you and the Monday brief.
Matching stories
Secure AI agents with HashiCorp Boundary
Enable AI agents to securely access your resources while operating within enterprise identity, access, and audit controls.
Terraform provider for Google Cloud 8.0 now generally available
The Terraform provider for Google Cloud 8.0 builds on expanded infrastructure discovery workflows, modernizes provider defaults, removes support for retired Google Cloud services, and improves consistency between Terraform configurations and Google Cloud APIs.
AI agents need continuity, not just context
Pulumi Neo works on infrastructure the way an engineer does: it clones repositories, edits files, installs dependencies, runs previews, and produces intermediate work along the way. A task is not only a conversation with a model. It is also a working directory that has to survive long enough for the agent to keep making progress. Imagine asking an agent to upgrade a Pulumi provider version across…
CI/CD Security Best Practices: A 2026 Pipeline Checklist
CI/CD security best practices for 2026: secrets management, scoped access, dependency scanning, signed artifacts, and audit logging in one checklist. | Blog
AI Writes Code Fast. Can You Trust What Gets Deployed?
AI has solved writing code fast. The new bottleneck is trusting what actually reaches production. Here's what that requires. | Blog
Best AI Security Solutions in 2026: A Buyer's Guide
Compare the best AI security solutions in 2026: LLM security, model monitoring, and AI-powered SOC tools, plus buying criteria and vendor questions. | Blog
{unscripted} Chicago and Columbus recap
{unscripted} Chicago and Columbus focused on AI code that doesn't ship, compliance as a feature, and the human cost of machine speed. | Blog
Git Blame Explained With Examples: Who Touched the Code?
In this post, we’ll take a look at the git blame command including how it works, how it differs from similar commands, and offer some examples.
Configuration as Code: Everything You Need to Know
Streamline your application management using Configuration as Code. Learn how CaC can save time, enhance flexibility, and improve system uptime.
Baking Security into Your Software Delivery Pipeline
Baking Security into Your Software Delivery Pipeline
Parallelism and Distributed Builds with Jenkins
Maximize your CI/CD efficiency with Jenkins parallelism. Learn to optimize pipelines, speed up builds, and enhance resource utilization. Try it now!
What Does Tessl Do? Key Features and Where It Fits
What Tessl does for AI agent skills, what it doesn't solve, and where Port fits in, whether you run Tessl alone, Port alone, or both.
The New Engineering Problem: Managing What AI Decides to Import
AI makes it faster to turn an idea into working software. A developer describes a feature, integration, or service and receives an implementation in minutes. Coding agents go further by editing files, running tests, troubleshooting failures, and preparing changes for review.
How to Audit Cloud Spend When You Inherit a New Environment
A practical guide to auditing cloud spend when you inherit a new environment: find waste, attribute costs, detect drift, and prevent overspend.
Cloud Cost Optimization Strategies for 2026 to Reduce Spend
Learn how to allocate cloud spend, rightsize Kubernetes safely, stop idle resources, manage commitments, and prevent cost spikes without risking reliability. | Blog
How to improve agent experience (AX) with CI
What the EU AI Act means for AI governance
Teams shipping AI in the EU must be able to demonstrate compliance. Here's how LaunchDarkly helps.
GitHub External Custom Properties: Sync Business Context | Port
Sync Port's business context into GitHub external custom properties to search, govern, and set ruleset guardrails on your repos.
What's New in Port: August 2026 Release Notes
August brings Port Workflows to General Availability (GA) as the governed orchestration layer for agents, automations, and approvals, alongside new Cursor Cloud Agent syncing and triggering directly from workflows and a wave of workflow, integration, and governance improvements rounds out the month.
Take AI Agents from Demo to Production with Port AI Builder
Why most AI agents stall before production, the five things that get them there, and how Port AI Builder builds them from a plain-language prompt.
Plugins Library: Ready-Made Plugins for Platform Teams
The Plugins Library brings ready-made plugins into Port: DORA dashboards, dependency trees, scorecard views, calendar, surveys, and more.
GitLab Critical Patch Release: 19.4.1, 19.3.3, 19.2.7
A faster, more reliable GitHub Actions alternative: Run Actions on CircleCI
Top AI Infrastructure Tools and How to Choose the Right One
Learn what AI infrastructure tools are, the main categories, top examples, and how to choose the right ones for your workloads.
Sonatype Is Now Awardable on the Platform One Solutions MarketPlace
Software delivery across th e Department of War (DoW) dep ends on speed, but growing use of open source, third-party components, and AI-assisted development makes the software supply chain harder to control. DoW teams need to identify and address risk early without introducing manual gates that slow mission delivery.
Agentic coding in the enterprise: Is your pipeline ready?
AI writes 61% of enterprise code. Learn what agentic coding means for production, cost, and governance, and how to prepare your pipeline.
How to design GitLab for enterprise scale
At enterprise scale, even small architecture choices can have outsized consequences. A deployment that works for a handful of teams can become a constraint once thousands of developers, repositories, and pipelines depend on it. That makes each decision made before rollout especially consequential. For example, your: Deployment model defines what your team must operate Runner strategy shapes how…
How GitLab reduced code-per-agentic-flow ratio by 45%
GitLab Duo Agent Platform orchestrates and automates complex tasks through agentic flows. A key part of the platform is the Flow Registry, a declarative configuration framework, built from reusable components, that compiles YAML into fully functional LangGraph flows. By using Flow Registry, agent builders — both our GitLab engineers and our customers can use declarative YAML configurations…
MLOps Solutions for Production Machine Learning
Learn how MLOps solutions support experiment tracking, model serving, monitoring, feature management, governance, and production rollouts.
10 tips to improve your coding agent game
In May I told you to trim the root instruction file until it fits on one screen . I also said anything that needs a hard guarantee belongs in a hook. In June I argued that the model that wrote the code shouldn’t be the one grading it . Several papers published this summer tested related questions. Most of the findings support that advice, while the research on subagent costs calls for more…
What is a software factory?
Why Are OSS Attackers Always After CI/CD Credentials?
CI/CD credentials are a prime target of malicious open source packages because of the sheer authority those credentials carry. Depending on their privileges, they can provide access to source code, build systems, package registries, cloud infrastructure, and production delivery.
Securing the software factory at machine speed
I joined GitLab at a moment when the way teams build and secure software has been changing rapidly. GitLab CEO Bill Staples recently framed that shift in When Code Is Abundant . When code is no longer the bottleneck, trust becomes scarce, and that constraint shows up first in what reaches production. As a CISO accountable for the same decisions as my peers, my operating thesis is simple: Agentic…
GitLab 19.4 released
HCP Vagrant deprecation: important dates and migration guidance
HCP Vagrant will be deprecated in 2026. Users should begin planning migrations as box creation, support, and operations are phased out.
Simplify compliance with the native pre-written policy experience in HCP Terraform
Teams can now browse HashiCorp-managed pre-written policies, add them to a policy set, and apply common compliance guardrails directly in HCP Terraform.
How to build a Language Server Protocol (LSP) plugin for Claude Code
Stories from the Factory Floor: Why AI software factories won’t always look like factories
There's a world of difference between wiring up coding agents for a side project and building a software factory inside a codebase that ships to thousands of customers at scale.
JFrog Artifactory Supports LuaRocks Hosting for NGINX, OpenResty and Kong
If your NGINX/OpenResty servers or Kong gateways pull Lua modules straight from public luarocks.org, one upstream outage can stall every build and deploy that depends on a “rock”. With LuaRocks support in JFrog Artifactory, you host and proxy those modules from a private LuaRocks registry you control, using the native experience you expect, not a …
Beyond the Hyperscalers: What Actually Protects You
Recorded September 3, 2026. Quotes are lightly edited for clarity. Maybe this sounds familiar. You run infrastructure at a company that isn’t American. Your workloads are on AWS, Azure, or Google Cloud, probably more than one, because that is what everyone picked. Until recently nobody asked you where the data lives or who can reach it. Now you’re getting questions. Legal wants to…
Kubernetes Observability: Metrics, Alerts, and Best Practices
Kubernetes observability lets you collect and correlate logs, metrics, and traces, configure actionable alerts, and improve production incident response.
Machine learning model deployment
Machine learning model deployment moves trained models to production. Learn deployment patterns for ML models, CI/CD, and feature-flag rollouts.
Simplifying Terraform for IBM Z with intent-driven workflows
Learn how intent-driven workflows introduce a new interaction model for IBM Terraform for Z and LinuxONE, helping organizations modernize infrastructure operations through guided, repeatable agentic workflows.
ParaShells: Parallels Desktop Turns Appliance Install Into a Root Shell
Your Mac runs a vulnerable version of Parallels Desktop. A malicious package, compromised CI job, or other unprivileged process is already running on it. No admin access. No Parallels-signed client. One appliance-install request later, attacker-controlled code runs as root. While testing Desktop 26.4.0 (build 57513) on Apple silicon, we found that an unprivileged local user …
Why AI Demands a New Approach to Shift Left
AI has chang ed the pace of software development . It i s also changing the conditions under which application security programs have to operate.
Set Up Cloud OIDC From the Pulumi CLI
Pulumi ESC can act as an OpenID Connect (OIDC) provider for AWS, Azure, and Google Cloud, issuing short-lived, signed tokens that these clouds exchange for temporary credentials. This eliminates hard-coded credentials and improves your security posture. Last year, we introduced an onboarding flow in the Pulumi Cloud console that makes it super easy to configure OIDC for your cloud provider in a…
Reduce AI Token Waste by Getting Decisions Right Earlier
AI coding assistants are changing the economics of software development. They can interpret tasks, inspect codebases, select dependencies, make changes, call tools, run tests, and prepare pull requests.
The New Security Leader’s IaC Governance Playbook
IaC governance playbook for security leaders: assess drift, close audit-trail gaps, enforce policy as code, set an access-review cadence.
Spacelift Flows Is Live: Bring IaC Rigor to Day 2
Alerts, provisioning, and incident response run on scripts nobody owns. Spacelift Flows automates Day 2 on a visual canvas. Live now.
Before You Renew Your Terraform Cloud Contract
What to check before renewing your Terraform Cloud contract: pricing, RUM billing, contract mechanics, and migration options.
Extending the Single Source of Truth to the Agentic Software Supply Chain
Every developer on your team now runs multiple agents. None of them are waiting for human sign-off to act. That’s exactly the gap we discussed and closed at swampUP 2026. JFrog unveiled new capabilities that extend the JFrog Platform as not only the Single Source of Truth for OSS and heritage software, but now the …
Live From the Show Floor: swampUP 2026
Live updates from this event have concluded. swampUP 2026 is officially LIVE in New York City! Three days, one stage, one mission: rebuild trust for a software supply chain that increasingly ships itself. Keynote updates land here as they happen, September 1–3, 2026. Let’s go! Conference Day 2, September 3rd [11:00 a.m.] The Great Model …
CircleCI is now available on Cursor Origin
Introducing JFrog Preview: Getting New Capabilities Into Your Hands, Faster
TLDR: “Preview” isn’t a lightweight version of GA, and it isn’t a beta with a new name on it. It just changes the timing and access. You’ll see new JFrog capabilities the day they’re ready for real use, not the day they’re ready for a press release. We’re starting at swampUP 2026. As we know, …
Pulumi Kubernetes v4.34.0: CRDs as provider extensions
We’re really excited to bring you v4.34.0, the newest version of the Pulumi Kubernetes provider , which includes improved support for Kubernetes Custom Resource Definitions (CRDs). As with any release, we’ve also shipped standard dependency updates and bug fixes. This provider release includes the newest resources for Kubernetes v1.37.0, which was recently cut. So that in itself is…
Unified Compliance Self Hosted Appliance
Unified Compliance Self Hosted Appliance Puppet ttrench Thu, 08/20/2026 - 09:21 Product Description Unified Compliance Self Hosted appliance for discovering, managing, and optimizing cloud and Kubernetes resources. Current Customer Link Customer Download Non-Customer Link Learn More Exclude From Downloads List Off
A simpler and more secure architecture with built-in Drivers | Humanitec
New Driver options open up the way to an architecture setup that is both simpler and more secure. You may transition smoothly at your own pace.
Slash your deployment times with incremental deployments | Humanitec
Update only what changed, and skip the rest, to massively speed up your turnaround time on deployments. Some restrictions apply.
P4 One CLI
P4 One CLI P4 Clients, Plugins, and Integrations | P4 One ttrench Thu, 07/16/2026 - 15:07 Product Description Command-line interface for P4 One with full access to version control operations and scripting. Current Customer Link Customer Download Exclude From Downloads List Off
Kubernetes with Buildkite: faster, simpler, and ready for scale
Our latest updates bring easier setup, better scaling, and out-of-the-box observability to your K8s experience.
Changelog roundup: October '25
A quick look at what we've been up to lately across the Buildkite platform.
Streamline API Management with Akana API Ops
Streamline API Management with Akana API Ops claire.oleary Thu, 05/07/2026 - 14:50 In this demo video, solutions engineer Olaf Van Gorp explains how to use API Ops in your Akana API Platform. Back to top Transcript Akana 2026 introduces a new feature that allows for effective and reliable promotion of API products to their production environment using command-line functions. This means that…
Agentic CI with Buildkite: Three practical examples
A closer look at our new agentic workflow components and how they enable you to bring LLMs into your CI/CD process.
Humanitec keeps being cutting edge with MCP support | Humanitec
Humanitec keeps being cutting edge with MCP support
Tip of the month: The base-env is your friend | Humanitec
Your monthly tip on the awesome features of the Humanitec Platform Orchestrator.
How to buy Humanitec | Humanitec
Ready to show value to stakeholders in two weeks, instead of two years? Learn how to set yourself up for a successful IDP rollout using Humanitec’s products.
P4 for Visual Studio Code (Plugin)
P4 for Visual Studio Code (Plugin) P4 Clients, Plugins, and Integrations ttrench Tue, 06/09/2026 - 09:07 Product Description Integrate Perforce P4 operations directly within Visual Studio Code IDE Current Customer Link https://portal.perforce.com/s/downloads?product=P4%20VS%20Code Exclude From Downloads List Off
Designing log-navigation tools in the Buildkite MCP server
A closer look at how we used AI to build a log-parsing toolset that helps AI agents think more like humans do.
What AI is teaching us about CI
What we've learned helping platform teams navigate the new challenges of AI-assisted software delivery.
P4 One Experiments (Plugin)
P4 One Experiments (Plugin) P4 One ttrench Tue, 05/19/2026 - 15:37 Product Description Create and compare creative experiments directly inside Unreal Engine. Current Customer Link https://www.fab.com/listings/a8a8554c-babe-445f-8baa-593ea2991913 Exclude From Downloads List Off










